WRQ Reflection for Secure IT Windows Server 6.0 (formerly known as F-Secure SSH server) processes access and deny lists in a case-sensitive manner, when previous versions were case-insensitive, which might allow remote attackers to bypass intended restrictions and login to accounts that should be denied.
2005-09-02T23:03:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 10.0 (HIGH)
AV:N/AC:L/Au:N/C:C/I:C/A:C
10.0
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | f-secure | f-secure_ssh_server | 5.1 | Yes |
Application | f-secure | f-secure_ssh_server | 5.2 | Yes |
Application | f-secure | f-secure_ssh_server | 5.3 | Yes |
Application | wrq | wrq_reflection_for_secure_it_windows_server | 6.0 | Yes |